CVE-2024-48292: High severity quickheal antivirus plus 2009 vulnerability
Published Nov 18, 2024
·Updated
An issue in the wssrvc.exe service of QuickHeal Antivirus Pro Version v24.0 and Quick Heal Total Security v24.0 allows authenticated attackers to escalate privileges.
Affected Software
2 affected components
QuickHeal Antivirus Pro
QuickHeal Total Security
Event History
Nov 18, 2024
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Data Sourced
via NVD·06:15 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2024-48292?
CVE-2024-48292 has a high severity rating due to its potential for privilege escalation by authenticated attackers.
2
How do I fix CVE-2024-48292?
To fix CVE-2024-48292, you should update to the latest patched version of QuickHeal Antivirus Pro or Quick Heal Total Security.
3
What are the affected versions for CVE-2024-48292?
CVE-2024-48292 affects QuickHeal Antivirus Pro Version v24.0 and Quick Heal Total Security v24.0.
4
Can unprivileged users exploit CVE-2024-48292?
Yes, CVE-2024-48292 can be exploited by authenticated unprivileged users to escalate their privileges.
5
Is this vulnerability specific to certain QuickHeal products?
Yes, CVE-2024-48292 specifically affects QuickHeal Antivirus Pro and Quick Heal Total Security.